IBM OpenPages with Watson 9.0 may write sensitive information, under specific configurations, in clear text to the system tracing log files that could be obtained by a privileged user.
History

Wed, 11 Dec 2024 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 11 Dec 2024 01:45:00 +0000

Type Values Removed Values Added
Description IBM OpenPages with Watson 9.0 may write sensitive information, under specific configurations, in clear text to the system tracing log files that could be obtained by a privileged user.
Title IBM OpenPages information disclosure
First Time appeared Ibm
Ibm openpages With Watson
Weaknesses CWE-312
CPEs cpe:2.3:a:ibm:openpages_with_watson:9.0:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm openpages With Watson
References
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2024-12-11T01:32:32.066Z

Updated: 2024-12-11T15:35:03.107Z

Reserved: 2024-05-09T16:27:02.679Z

Link: CVE-2024-35117

cve-icon Vulnrichment

Updated: 2024-12-11T15:34:58.908Z

cve-icon NVD

Status : Received

Published: 2024-12-11T02:15:05.140

Modified: 2024-12-11T02:15:05.140

Link: CVE-2024-35117

cve-icon Redhat

No data.